Skip navigation

AnalogX Server Subject to Buffer Overflow - 31 Dec 1999

 
Analog-X Subject to Buffer Overflow
Reported December 31, 1999 by
USSRLabs

VERSIONS AFFECTED
Analog-X SimpleServer v1.1

DESCRIPTION

UssrLabs found a Local / Remote Buffer overflow, The code that
handles GET commands has an unchecked buffer that will allow arbitrary code to run if the buffer becomes overflowed. An overflow takes place when approximately 1000 characters are sent to the server in conjunction with the HTTP GET command.

VENDOR RESPONSE

AnalogX has been made aware of this problem, however no response was known at the time of this writing.

CREDITS
Discovered by
USSRLabs

Hide comments

Comments

  • Allowed HTML tags: <em> <strong> <blockquote> <br> <p>

Plain text

  • No HTML tags allowed.
  • Web page addresses and e-mail addresses turn into links automatically.
  • Lines and paragraphs break automatically.
Publish